this post was submitted on 09 Apr 2026
33 points (100.0% liked)

Cybersecurity

9810 readers
100 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

founded 2 years ago
MODERATORS
top 4 comments
sorted by: hot top controversial new old
[–] fubarx@lemmy.world 3 points 1 day ago (1 children)
[–] trolololol@lemmy.world 3 points 1 day ago (1 children)

Yep that's what I though, this looks like payback from that.

The Dark reading article seems to be quite detailed but isn't very serious though. Near the end it suggest these countermeasures:

to remove PLCs from direct Internet exposure and implement secure gateways and firewalls

place the physical mode switch on the controller into the "run" position

All I can offer is surprised Pikachu face.

[–] Machinist@lemmy.world 1 points 1 day ago

I've not worked with infrastructure PLCs but have some familiarity with industrial PLCs.

The mode switch probably actually is an effective countermeasure. It's common to leave machinery in Setup Mode all the time as you can't change the program or parameters in Run Mode. I.E. you usually trust your crew not poke buttons they shouldn't. Only in large factories do you find Run Mode being used, even large shops often leaves it in Setup.

As to gateways and firewalls, the amount of machinery exposed rawdog to the entire interwebs is truly frightening. A lot of industrial equipment have exposed ports that are completely unsecured. Think RS-232 style comms that allow program and even parameter editing.

I would imagine that many sewage trearment facilities are even less technologically sophisticated than a medium size machine shop.

[–] stringere@sh.itjust.works 6 points 2 days ago

Programmable Logic Controllers